Habe auf meinem Server o.g. Firewall mit Yast installiert und dann weiter nach dem Suse Handb. konfiguriert. Nachdem der Mailversand über Postfix wieder läuft (Port 465 ) hab ich einen merkwürdigen Eintrag im Messages log:
- SuSE-FW-DROP-ICMP-CRIT IN=eth0 OUT= MAC=00:40:63:c4:26:73:00:60:08:f6:f5:9d:08:00 SRC=217.160.178.253 DST=217.160.178.227
LEN=100 TOS=0x10 PREC=0xC0 TTL=64 ID=57775 PROTO=ICMP TYPE=5 CODE=1 GATEWAY=217.160.178.251 [SRC=217.160.178.227 DST=217.160.178.251 LEN=72 TOS=0x10
PREC=0x00 TTL=64 ID=61949 DF PROTO=UDP SPT=1034 DPT=53 LEN=52
Code: Select all
FW_QUICKMODE="no"
FW_DEV_EXT="eth0"
FW_DEV_INT=""
FW_DEV_DMZ=""
FW_ROUTE="no"
FW_MASQUERADE="no"
FW_MASQ_DEV="$FW_DEV_EXT"
FW_MASQ_NETS=""
FW_PROTECT_FROM_INTERNAL="no"
FW_AUTOPROTECT_SERVICES="yes"
FW_SERVICES_EXT_TCP="16523 123 443 465 53 http https pop3 pop3s smtp ssh"
FW_SERVICES_EXT_UDP="domain"
FW_SERVICES_EXT_IP=""
FW_SERVICES_DMZ_TCP=""
FW_SERVICES_DMZ_UDP=""
FW_SERVICES_DMZ_IP=""
FW_SERVICES_INT_TCP=""
FW_SERVICES_INT_UDP=""
FW_SERVICES_INT_IP=""
FW_SERVICES_QUICK_TCP=""
FW_SERVICES_QUICK_UDP=""
FW_SERVICES_QUICK_IP=""
FW_TRUSTED_NETS=""
FW_ALLOW_INCOMING_HIGHPORTS_TCP="DNS"
FW_ALLOW_INCOMING_HIGHPORTS_UDP="DNS"
FW_SERVICE_AUTODETECT="yes"
FW_SERVICE_DNS="yes"
FW_SERVICE_DHCLIENT="no"
FW_SERVICE_DHCPD="no"
FW_SERVICE_SQUID="no"
FW_SERVICE_SAMBA="no"
FW_FORWARD=""
FW_FORWARD_MASQ=""
FW_REDIRECT=""
FW_LOG_DROP_CRIT="yes"
FW_LOG_DROP_ALL="no"
FW_LOG_ACCEPT_CRIT="yes"
FW_LOG_ACCEPT_ALL="no"
FW_LOG="--log-level warning --log-tcp-options --log-ip-option --log-prefix SuSE-FW"
FW_KERNEL_SECURITY="yes"
FW_STOP_KEEP_ROUTING_STATE="no"
FW_ALLOW_PING_FW="NO"
FW_ALLOW_PING_DMZ="no"
FW_ALLOW_PING_EXT="no"
# #
#-------------------------------------------------------------------------#
# #
# EXPERT OPTIONS - all others please don't change these! #
# #
Rest wie es im Standard ist
Gruss Dirk